Technical information
- Android.Backdoor.657.origin
- UDP(DNS) <Google DNS>
- TCP(HTTP/1.1) 1####.31.213.162:80
- TCP(HTTP/1.1) c####.360.cn:80
- TCP(HTTP/1.1) 47.97.2####.214:80
- TCP(HTTP/1.1) a.e####.cn:80
- TCP(HTTP/1.1) api.map.b####.com:80
- TCP(HTTP/1.1) api.e####.cn:80
- TCP(HTTP/1.1) c.appj####.com:80
- TCP(HTTP/1.1) pic.e####.cn:80
- TCP(TLS/1.0) sh.wagbr####.alibaba####.com:443
- TCP(TLS/1.0) api.e####.cn:443
- TCP(TLS/1.0) pic.e####.cn:443
- a.e####.cn
- api.e####.cn
- api.map.b####.com
- c####.360.cn
- c.appj####.com
- pic.e####.cn
- plb####.u####.com
- a.e####.cn/public/isDebugAd.shtml?ts=####&appid=####&sign=####
- api.e####.cn/public/getSecondaryHomeData.shtml?machine=####&version=####...
- pic.e####.cn/web/258794635.jpg
- api.map.b####.com/location/ip?ak=####&coor=####
- c####.360.cn/stra_packet
- c.appj####.com/ad/splash/stats.html
- /data/data/####/.jg.ic
- /data/data/####/.jgrpa.xml
- /data/data/####/.log.lock
- /data/data/####/.log.rpa
- /data/data/####/430c0b1b47ccc0f0d5972fc2c1b284e4.xml
- /data/data/####/AdloadStore.xml
- /data/data/####/Alvin2.xml
- /data/data/####/ContextData.xml
- /data/data/####/Ji.xml
- /data/data/####/MessageStore.db
- /data/data/####/MessageStore.db-journal
- /data/data/####/MsgLogStore.db
- /data/data/####/MsgLogStore.db-journal
- /data/data/####/ad_show_time.xml
- /data/data/####/cn.ecook.xml
- /data/data/####/info.xml
- /data/data/####/jg_so_upgrade_setting.xml
- /data/data/####/libjiagu1783514607.so
- /data/data/####/log.android.library.xml
- /data/data/####/multidex.version.xml
- /data/data/####/qihoo_jiagu_crash_report.xml
- /data/data/####/um_pri.xml
- /data/data/####/umeng_common_config.xml
- /data/data/####/umeng_general_config.xml
- /data/data/####/umeng_it.cache
- /data/data/####/umeng_message_state.xml
- /data/data/####/webview.db
- /data/data/####/webview.db-journal
- /data/media/####/25effdsdbsv1fn6ozjtwmnfvc.tmp
- /data/media/####/2cx9k28ma0vwh4gjl2jy1zld3.tmp
- /data/media/####/45yjtbfi6io2xwdx8lxr3nzbk.tmp
- /data/media/####/4ddc1dd1hh9tfeft4zf2fvl12.tmp
- /data/media/####/5em92xculfcz7fq227296w1nn.tmp
- /data/media/####/6rux48madb34bcfr9pxy6o0kx.tmp
- /data/media/####/6xsh5tdz8aczvge0dk1jlxth9.tmp
- /data/media/####/Alvin2.xml
- /data/media/####/ContextData.xml
- /data/media/####/f94wllcqcik9i0ze3nq9zpyu.tmp
- /data/media/####/oe37hiu5wukok59fxpdg1615.tmp
- cat /sys/class/net/wlan0/address
- chmod 755 <Package Folder>/.jiagu/libjiagu1783514607.so
- ls /sys/class/thermal
- sh
- su
- libjiagu1783514607
- AES-CBC-PKCS5Padding
- RSA
- RSA-ECB-PKCS1Padding
- AES-CBC-PKCS5Padding